This is an automated email from the ASF dual-hosted git repository. Fokko pushed a commit to branch fd-zizmor in repository https://gitbox.apache.org/repos/asf/parquet-format.git
commit 3b418a25af768700d5dc22d6bf9aed410ffa9f24 Author: Fokko Driesprong <[email protected]> AuthorDate: Tue Sep 1 16:12:12 2026 +0200 MINOR: Add Zizmor for workflow checks Zizmor checks if the best practices are being used inside of the GitHub workflows --- .github/workflows/zizmor.yml | 46 ++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 46 insertions(+) diff --git a/.github/workflows/zizmor.yml b/.github/workflows/zizmor.yml new file mode 100644 index 0000000..ed17df0 --- /dev/null +++ b/.github/workflows/zizmor.yml @@ -0,0 +1,46 @@ +# Licensed to the Apache Software Foundation (ASF) under one +# or more contributor license agreements. See the NOTICE file +# distributed with this work for additional information +# regarding copyright ownership. The ASF licenses this file +# to you under the Apache License, Version 2.0 (the +# "License"); you may not use this file except in compliance +# with the License. You may obtain a copy of the License at +# +# http://www.apache.org/licenses/LICENSE-2.0 +# +# Unless required by applicable law or agreed to in writing, +# software distributed under the License is distributed on an +# "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY +# KIND, either express or implied. See the License for the +# specific language governing permissions and limitations +# under the License. + +name: GitHub Actions Security Analysis with zizmor 🌈 + +on: + push: + branches: + - master + - parquet-* + pull_request: + branches: ["**"] + +permissions: {} + +jobs: + zizmor: + name: Run zizmor 🌈 + runs-on: ubuntu-latest + permissions: {} + steps: + - name: Checkout repository + uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 + with: + persist-credentials: false + + - name: Run zizmor 🌈 + uses: zizmorcore/zizmor-action@3dc1ecc9bcb9e94e9b2c709687979e1298497054 # v0.6.2 + with: + advanced-security: false + min-severity: medium + min-confidence: medium
